The system must require passwords to contain at least one special character.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-216095SOL-11.1-040100SV-216095r1016290_ruleCCI-004066medium
Description
Complex passwords can reduce the likelihood of success of automated password-guessing attacks.
STIGDate
Solaris 11 X86 Security Technical Implementation Guide2025-05-05

Details

Check Text (C-216095r1016290_chk)

Check the MINSPECIAL setting. # grep ^MINSPECIAL /etc/default/passwd If the MINSPECIAL setting is less than one, this is a finding.

Fix Text (F-17331r986442_fix)

The root role is required. # pfedit /etc/default/passwd a Locate the line containing: MINSPECIAL Change the line to read: MINSPECIAL=1